5.5
CVE-2000-0552
- EPSS 1.12%
- Veröffentlicht 06.06.2000 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:51:58
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obtain sensitive information.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.12% | 0.618 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
CWE-459 Incomplete Cleanup
The product does not properly "clean up" and remove temporary or supporting resources after they have been used.
http://archives.neohapsis.com/archives/ntbugtraq/2000-q2/0237.html
http://www.securityfocus.com/bid/1307
https://exchange.xforce.ibmcloud.com/vulnerabilities/4607